API Token Disclosure

planet is vulnerable to API Token Disclosure. The vulnerability is due to insecure file permissions set on the secrets file containing the API key. Any user in the system is able to view the secret fi ...

Continue Reading
Path Traversal

mlflow is vulnerable to Path Traversal. The vulnerability exists because the `handlers.py` does not properly sanitize the path parameter, which allows an attacker to access files outside the expected ...

Continue Reading
[SECURITY] Fedora 37 Update: nmstate-2.2.10-5.fc37

Nmstate is a library with an accompanying command line tool that manages ho st networking settings in a declarative manner and aimed to satisfy enterprise needs to manage host networking through a nor ...

Continue Reading

CVSS3 - HIGH

KeePass vulnerability allows attackers to access the master password

KeePass is a free open source [password manager](), which helps you to manage your passwords and stores them in encrypted form. In fact, KeePass encrypts the whole database, i.e. not only your passwor ...

Continue Reading
APT attacks: Exploring Advanced Persistent Threats and their evasive techniques

Cyber criminals come in all shapes and sizes. On one end of the spectrum, there's the script kiddie or inexperienced ransomware gang looking to make a quick buck. On the other end are state-sponsored ...

Continue Reading
CVE-2023-32680

Metabase is an open source business analytics engine. To edit SQL Snippets, Metabase should have required people to be in at least one group with native query editing permissions to a database–bu ...

Continue Reading
nmstate bug fix and enhancement update

An update is available for nmstate. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerabil ...

Continue Reading
Wordfence Intelligence Weekly WordPress Vulnerability Report (May 8, 2023 to May 14, 2023)

Last week, there were 139 vulnerabilities disclosed in 105 WordPress Plugins and 2 WordPress themes that have been added to the Wordfence Intelligence Vulnerability Database, and there were 47 Vulnera ...

Continue Reading

CVSS3 - MEDIUM

Back to Main

Subscribe for the latest news: